Gitlab — веб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 17.0.8 | 17.0.8 | ||
| 17.0.7 | 17.0.7 | ||
| 17.0.6 | 17.0.6 | ||
| 17.0.5 | 17.0.5 | ||
| 17.0.4 | 17.0.4 | ||
| 17.0.3 | 17.0.3 | ||
| 17.0.2 | 17.0.2 | ||
| 17.0.1 | 17.0.1 | ||
| 17.0.0 | 17.0.0 |
Показывать по
Количество 5 943
CVE-2022-3286
Lack of IP address checking in GitLab EE affecting all versions from 14.2 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 allows a group member to bypass IP restrictions when using a deploy token
CVE-2022-3283
A potential DOS vulnerability was discovered in GitLab CE/EE affecting ...
CVE-2022-3283
A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions before before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1 While cloning an issue with special crafted content added to the description could have been used to trigger high CPU usage.
CVE-2022-3279
An unhandled exception in job log parsing in GitLab CE/EE affecting al ...
CVE-2022-3279
An unhandled exception in job log parsing in GitLab CE/EE affecting all versions prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 allows an attacker to prevent access to job logs
CVE-2022-3067
An issue has been discovered in the Import functionality of GitLab CE/ ...
CVE-2022-3067
An issue has been discovered in the Import functionality of GitLab CE/EE affecting all versions starting from 14.4 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an authenticated user to read arbitrary projects' content given the project's ID.
CVE-2022-3066
An issue has been discovered in GitLab affecting all versions starting ...
CVE-2022-3066
An issue has been discovered in GitLab affecting all versions starting from 10.0 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an unauthorised user to create issues in a project.
CVE-2022-3060
Improper control of a resource identifier in Error Tracking in GitLab ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2022-3286 Lack of IP address checking in GitLab EE affecting all versions from 14.2 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 allows a group member to bypass IP restrictions when using a deploy token | CVSS3: 5.3 | 0% Низкий | почти 4 года назад | |
CVE-2022-3283 A potential DOS vulnerability was discovered in GitLab CE/EE affecting ... | CVSS3: 7.5 | 1% Низкий | почти 4 года назад | |
CVE-2022-3283 A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions before before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1 While cloning an issue with special crafted content added to the description could have been used to trigger high CPU usage. | CVSS3: 7.5 | 1% Низкий | почти 4 года назад | |
CVE-2022-3279 An unhandled exception in job log parsing in GitLab CE/EE affecting al ... | CVSS3: 2.7 | 1% Низкий | почти 4 года назад | |
CVE-2022-3279 An unhandled exception in job log parsing in GitLab CE/EE affecting all versions prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 allows an attacker to prevent access to job logs | CVSS3: 2.7 | 1% Низкий | почти 4 года назад | |
CVE-2022-3067 An issue has been discovered in the Import functionality of GitLab CE/ ... | CVSS3: 6.5 | 1% Низкий | почти 4 года назад | |
CVE-2022-3067 An issue has been discovered in the Import functionality of GitLab CE/EE affecting all versions starting from 14.4 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an authenticated user to read arbitrary projects' content given the project's ID. | CVSS3: 6.5 | 1% Низкий | почти 4 года назад | |
CVE-2022-3066 An issue has been discovered in GitLab affecting all versions starting ... | CVSS3: 5.4 | 1% Низкий | почти 4 года назад | |
CVE-2022-3066 An issue has been discovered in GitLab affecting all versions starting from 10.0 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an unauthorised user to create issues in a project. | CVSS3: 5.4 | 1% Низкий | почти 4 года назад | |
CVE-2022-3060 Improper control of a resource identifier in Error Tracking in GitLab ... | CVSS3: 7.3 | 1% Низкий | почти 4 года назад |
Уязвимостей на страницу